PT-2017-14119 · Xen+1 · Xen+1

Vitaly Kuznetsov

·

Published

2017-10-18

·

Updated

2018-01-16

·

CVE-2017-15591

CVSS v3.1

6.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:C/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Xen versions 4.5.x through 4.9.x
Description An issue in the DMOP map/unmap implementation allows attackers who control a stub domain kernel or tool stack to cause a denial of service, resulting in a host OS crash, due to a missing comparison of range start to range end.
Recommendations For Xen versions 4.5.x through 4.9.x, update to a version that includes the fix for the DMOP map/unmap implementation issue to prevent a denial of service.

Fix

DoS

RCE

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2017-15591
DSA-4050-1
OPENSUSE-SU-2017_2916-1
SUSE-SU-2017:2864-1
SUSE-SU-2017:2873-1

Affected Products

Suse
Xen